tailscale
Warn
Audited by Snyk on Feb 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 0.80). The skill instructs the agent to run Tailscale CLI/API commands that change the machine's network configuration (e.g., tailscale up, enable SSH, expose services) and perform tailnet-wide actions (create/delete/auth keys) which modify system state and can expose or alter the host—many of which require elevated privileges—even though it doesn't explicitly ask to bypass sudo.
Audit Metadata